7.8
CVSSv2

CVE-2013-5480

Published: 27/09/2013 Updated: 07/10/2013
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

The DNS-over-TCP implementation in Cisco IOS 12.2 and 15.0 up to and including 15.3, when NAT is used, allows remote malicious users to cause a denial of service (device reload) via a crafted IPv4 DNS TCP stream, aka Bug ID CSCuf28733.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios 15.3

cisco ios 15.2

cisco ios 15.1

cisco ios 12.2

cisco ios 15.0

Vendor Advisories

<!--- NAT 010-summary 02 ---> The Cisco IOS Software implementation of the network address translation (NAT) feature contains three vulnerabilities when translating IP packets that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition Cisco has released software updates that address these vulnerabilities ...